adkka72424 is a threat actor known for advertising a very large aggregated email-address dataset on BreachForums. The actor claimed the collection was assembled from multiple pre-existing leak sources, including databases, logs, and credential combo lists, indicating activity centered on compiling and distributing breach-derived data rather than a clearly attributed intrusion set or malware operation. The dataset was assessed to contain billions of records, with a substantially smaller but still very large number of unique email addresses. Such activity can support downstream phishing, credential abuse, and malware delivery by improving victim targeting and enabling cross-referencing against other leaked datasets. There is no high-confidence evidence here tying adkka72424 to a specific nation-state, ransomware operation, or distinct operational subgroup.
Mallory correlates actor tradecraft and target patterns against your stack, your sector, and your geography. See overlap before they land.
1 sources tracked across advisories, community write-ups, and news. New activity surfaces here as Mallory finds it.
Match sector + geo + tech-stack targeting against your real footprint.
Every observed MITRE ATT&CK technique, grouped by tactic.
Families this actor is known to deploy, with IOCs and behavior.
CVEs this actor has used in known campaigns.
YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.
Domains, IPs, and hashes tied to this actor, refreshed continuously.